8.8
CVSSv3

CVE-2020-12416

Published: 09/07/2020 Updated: 03/05/2022
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

A VideoStreamEncoder may have been freed in a race condition with VideoBroadcaster::AddOrUpdateSink, resulting in a use-after-free, memory corruption, and a potentially exploitable crash. This vulnerability affects Firefox < 78.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox

opensuse leap 15.1

opensuse leap 15.2

Vendor Advisories

Mozilla Foundation Security Advisory 2020-29 Security Vulnerabilities fixed in Thunderbird 78 Announced July 16, 2020 Impact high Products Thunderbird Fixed in Thunderbird 78 ...
Mozilla Foundation Security Advisory 2020-24 Security Vulnerabilities fixed in Firefox 78 Announced June 30, 2020 Impact high Products Firefox Fixed in Firefox 78 ...